linux-pentester-command-reference
Fail
Audited by Gen Agent Trust Hub on Jun 12, 2026
Risk Level: CRITICALREMOTE_CODE_EXECUTIONCOMMAND_EXECUTIONEXTERNAL_DOWNLOADSDATA_EXFILTRATION
Full Analysis
- [REMOTE_CODE_EXECUTION]: The skill provides several functional one-liners for establishing reverse shells, including Bash TCP shells, Python socket-based shells, and Netcat listeners/connectors. These patterns were flagged by both AV scanners and YARA rules.
- [EXTERNAL_DOWNLOADS]: The documentation instructs users to clone a repository from an untrusted GitHub account ('HIMANSHUSHARMA20') and suggests downloading an enumeration script ('linpeas.sh') from an unverified source ('carlospolop').
- [COMMAND_EXECUTION]: Extensive documentation is provided for high-risk system commands, including SUID binary exploitation, sudo vulnerability abuse (CVE-2019-14287), kernel exploit compilation using gcc, and PATH hijacking techniques.
- [COMMAND_EXECUTION]: The skill details methods for maintaining persistent access to a system, such as modifying the '.bashrc' file, creating crontab-based backdoors, and injecting unauthorized SSH keys into the 'authorized_keys' file.
- [DATA_EXFILTRATION]: Provides specific commands for exfiltrating sensitive data (e.g., the /etc/shadow file) over the network using Netcat and Base64 encoding.
Recommendations
- CRITICAL: 1 infected file(s) detected - DO NOT USE
- AI detected serious security threats
Audit Metadata